1、In todays digital world,firmware vulnerabilities are a significant concern for data centers,enterprisecustomers,and end-users.The lack of transparency of what is included has often rendered the firmware aninscrutable black box,posing considerable challenges for vulnerability tracing.By adopting SBOM
2、firmware,IT administrators and security professionals can proactively identify and request remediation tovulnerabilities,ensuring compliance with industry standards and mitigating business risks.Hence,SBOM isbecoming a necessity.In this presentation,well discuss system administrator SBOM use cases,s
3、pecifications(CycloneDX),andadd-on technologies.Well explore how these can empower administrators leveraging OSF or proprietaryfirmware to generate vulnerability reports,trace impact,and request remediations quickly.Join us as wenavigate towardsa more secure and transparent firmware landscapewith SB
4、OM.Empowering Firmware Security:The Role of SBOM to End UsersAdonay Berhe,Product Marketing Manager,AMIEmpowering Firmware Security:The Indispensable Role of SBOM for End UsersSecurity and Data ProtectionA software bill of materials(SBOM)declares the inventory of components used to build a software/
5、firmware artifact,such as an application.Proprietary ComponentsOpen-source ComponentsThird Party LibrariesTools and UtilitiesBuild EnvironmentWhat is an SBOM?https:/en.wikipedia.org/wiki/Software_supply_chain https:/ Industry Factors Driving SBOM in FirmwareAdoption of BOM in Other IndustriesGovernm
6、ent/Regulatory Influence on CybersecurityIncrease Firmware Attach PublicityIncrease in Firmware Vulnerability ReportingIndustry Work GroupsSBOM Use-Caseshttps:/uefi.org/sites/default/files/resources/UEFI%20Support%20for%20Software%20Bill%20of%20Materials%20%28SBOM%29_AMI_UEFI_Final_Deck.pdf INVENTOR